> Markdown version of [/jobs/ext/1895636-cloud-security-engineer](https://www.wearedevelopers.com/jobs/ext/1895636-cloud-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cloud Security Engineer - **Company:** American Welding Society, Inc. - **Location:** United States - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Amazon S3, Cloud Computing, Cloud Computing Security, Cloud Engineering, Cyber Security, DevOps, Identity and Access Management, Python (Programming Language), Key Management, PCI Data Security Standards, Blockchain, Software Engineering, TypeScript, Data Logging, Pulumi, Scripting, Amazon Virtual Private Cloud (VPC), Containerization, Web3.js, Terraform, Programming Languages - **Published:** August 2, 2026 - **Apply:** https://www.careerbuilder.com/job-details/cloud-security-engineer--0ea33985-3abf-46d0-a7b1-39117bb9db7f ## About the Role * 4+ years of experience in cloud security, cloud engineering, or a security-focused infrastructure role * Deep, hands-on expertise with AWS security services: IAM, SCP, GuardDuty, Security Hub, CloudTrail, Config, KMS, WAF, Inspector, and VPC * Hands-on experience writing infrastructure as code (Pulumi, Terraform, CDK, or equivalent) with a security-first mindset * Strong understanding of AWS networking and how misconfigurations translate to real attack surface * Proficiency in at least one scripting or programming language (Python, TypeScript, or Go) for automation and tooling * Ability to evaluate architectural decisions for security risk and communicate findings clearly to engineering peers * (Plus) Familiarity with Pulumi, specifically TypeScript-based stacks * (Plus) Familiarity with Web3, blockchain infrastructure, or crypto-sector threat models * (Plus) Experience securing containerized workloads on ECS or EKS, including image scanning and runtime security * (Plus) AWS certifications: Security Specialty, Solutions Architect - Professional, or equivalent * (Plus) Exposure to SOC 2 Type II or PCI-DSS cloud control requirements, Amazon Web Services (AWS), Automation, Benchmarking, Blockchain, Building Codes, Cloud Computing, Communication Skills, Continuous Improvement, Cryptography, DevOps, Economics, Embedded Systems, Incident Response, Machine Tool, PCI-DSS, Politics, Python Programming/Scripting Language, Risk, Risk Management, Security Analysis, Security Architecture, Security Infrastructure, Software Engineering, Sports, Threat Modeling ## Description Polymarket is hiring a Cloud Security Engineer to own the security posture of our AWS environment. You'll be embedded in our engineering and security teams, designing and enforcing security controls directly in infrastructure code, building guardrails that scale with the product, and reducing risk without slowing down engineering velocity. This role is hands-on and highly cross-functional. You'll work closely with DevOps, Platform, and Application Engineering to make secure-by-default the path of least resistance. What You'll Do * Own and continuously improve Polymarket's AWS security posture across accounts, regions, and services - including IAM policies, SCPs, VPC segmentation, and account-level security baselines * Review and contribute to IaC modules that encode security defaults; integrate automated security checks into the deployment pipeline including policy-as-code validation and misconfiguration scanning * Own cloud-side security telemetry: CloudTrail, GuardDuty, Security Hub, Config Rules, VPC Flow Logs, and S3 access logging * Develop and tune detection logic for cloud-specific threats; partner with the SOC team on alert fidelity, incident response runbooks, and AWS-level investigations * Govern secrets management using AWS Secrets Manager and SSM Parameter Store; manage KMS key policies, rotation, and envelope encryption patterns * Drive remediation of findings from AWS Inspector, Security Hub, and third-party CSPM tooling; maintain benchmarks aligned to CIS AWS Foundations * Support audit and compliance activities (SOC 2, PCI-DSS, or similar) and conduct regular access reviews to identify and remediate privilege creep ## Related Videos - [Unleashing Potential Across Teams: The Power of Infrastructure as Code](https://www.wearedevelopers.com/videos/930-unleashing-potential-across-teams-the-power-of-infrastructure-as-code) - [Smart Contract fundamentals - My first DApp](https://www.wearedevelopers.com/videos/52-smart-contract-fundamentals-my-first-dapp) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Terraform for Developers](https://www.wearedevelopers.com/videos/3-terraform-for-developers) - [DevOps Maturity Check – a way to balance autonomy and alignment](https://www.wearedevelopers.com/videos/58-devops-maturity-check-a-way-to-balance-autonomy-and-alignment) ## Related Articles - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)